Monitor vulnerabilities like this one. Sign up free to get alerted when software you use is affected.

Rootio-Linux: Unauthorized Access Through Unauthenticated APIs

ROOT-OS-UBUNTU-2404-CVE-2025-38372
Summary

The Rootio-Linux operating system has a vulnerability that allows hackers to access the system without a password. This means that an attacker could take control of the system and access sensitive data. Root has released a patch to fix this issue, so make sure to update to a fixed version of Rootio-Linux to protect your system.

What to do
  • Update rootio-linux to version 6.8.0-107.107.root.io.60.
  • Update rootio-linux to version 6.8.0-110.110.root.io.62.
Affected software
Ecosystem VendorProductAffected versions
Root:Ubuntu:24.04 – rootio-linux < 6.8.0-107.107.root.io.60
< 6.8.0-110.110.root.io.62
Fix: upgrade to 6.8.0-107.107.root.io.60
Original title
CVE-2025-38372 in rootio-linux - Patched by Root
Original description
Root has patched CVE-2025-38372 in the rootio-linux package for Root:Ubuntu:24.04. Multiple fixed versions available.
Published: 16 Apr 2026 · Updated: 16 Apr 2026 · First seen: 9 Apr 2026